STIGhub
STIGs
RMF Controls
Compare
← All Controls
SI-4
System and Information Integrity
Rev 3
System Monitoring
CCI Identifiers (22)
CCI-001252
The organization monitors events on the information system in accordance with organization-defined monitoring objectives and detects information system attacks.
CCI-001253
Defines the objectives of monitoring for attacks and indicators of potential attacks on the system.
CCI-001254
The organization identifies unauthorized use of the information system.
CCI-001255
Invoke internal monitoring capabilities or deploy monitoring devices strategically within the system to collect organization-determined essential information.
CCI-001256
Invoke internal monitoring capabilities or deploy monitoring devices at ad hoc locations within the system to track specific types of transactions of interest to the organization.
CCI-001257
Adjust the level of system monitoring activity when there is a change in increased risk to organizational operations and assets, individuals, other organizations, or the Nation.
CCI-001258
Obtain legal opinion with regard to system monitoring activities.
CCI-002641
Monitor the system to detect attacks and indicators of potential attacks in accordance with organization-defined monitoring objectives.
CCI-002642
Monitor the system to detect unauthorized local connections.
CCI-002643
Monitor the system to detect unauthorized network connections.
CCI-002644
Monitor the system to detect unauthorized remote connections.
CCI-002645
Defines the techniques and methods to be used to identify unauthorized use of the system.
CCI-002646
Identify unauthorized use of the system through organization-defined techniques and methods.
CCI-002647
The organization protects information obtained from intrusion-monitoring tools from unauthorized access.
CCI-002648
The organization protects information obtained from intrusion-monitoring tools from unauthorized modification.
CCI-002649
The organization protects information obtained from intrusion-monitoring tools from unauthorized deletion.
CCI-002650
Defines the system monitoring information that is to be provided the organization-defined personnel or roles.
CCI-002651
Defines the personnel or roles that are to be provided organization-defined system monitoring information.
CCI-002652
Defines the frequency at which the organization will provide the organization-defined system monitoring information to organization-defined personnel or roles.
CCI-002653
The organization provides organization-defined information system monitoring information to organization-defined personnel or roles as needed or per organization-defined frequency.
deprecated
CCI-002654
Provide organization-defined system monitoring information to organization-defined personnel or roles as needed, and/or per organization-defined frequency.
CCI-004967
Analyze detected events and anomalies.
Linked STIG Checks (5)
Across 2 STIGs. Click to expand.
▶
Network Infrastructure Policy Security Technical Implementation Guide
4 checks
▶
SDN Using NV Security Technical Implementation Guide
1 check